Bobinas P4G
  • Login
  • Public

    • Public
    • Groups
    • Popular
    • People

Conversation

Notices

  1. Bob Mottram (bob@social.freedombone.net)'s status on Monday, 17-Apr-2017 22:13:08 UTC Bob Mottram Bob Mottram
    • Christopher Allan Webber
    • Maiyannah Bishop
    @maiyannah @cwebber I also thought mike made some good points about advisory privacy
    In conversation Monday, 17-Apr-2017 22:13:08 UTC from social.freedombone.net permalink
    • Bob Mottram (bob@social.freedombone.net)'s status on Monday, 17-Apr-2017 22:25:03 UTC Bob Mottram Bob Mottram
      • Christopher Allan Webber
      • Maiyannah Bishop
      @cwebber @maiyannah it means that posts contain privacy related metadata which the receiver is then supposed to faithfully implement. Mike points out that this assumes that all actors will play nicely, but its quite possible for the metadata to be ignored. He indicates that advisory privacy is possible in Hubzilla, but not the default and the admin needs to turn it on if they want it.
      In conversation Monday, 17-Apr-2017 22:25:03 UTC permalink
    • Bob Mottram (bob@social.freedombone.net)'s status on Monday, 17-Apr-2017 22:36:55 UTC Bob Mottram Bob Mottram
      • Christopher Allan Webber
      • Maiyannah Bishop
      @cwebber @maiyannah it depends on who the adversary is, but with Hubzilla's "privacy groups" I think it's done with public key crypto and the keys kept on the server (perhaps salted with the instance ID). The admin will still be able to read whatever, but it should avoid user A accidentally being able to read something from user B which was unintended.
      In conversation Monday, 17-Apr-2017 22:36:55 UTC permalink
    • Bob Mottram (bob@social.freedombone.net)'s status on Monday, 17-Apr-2017 22:40:42 UTC Bob Mottram Bob Mottram
      • Christopher Allan Webber
      • Maiyannah Bishop
      @cwebber @maiyannah transport security doesn't really prevent the situation where a post from privacy group A somehow accidentally (or otherwise) finds its way into a different group.
      In conversation Monday, 17-Apr-2017 22:40:42 UTC permalink
    • Bob Mottram (bob@social.freedombone.net)'s status on Monday, 17-Apr-2017 22:42:28 UTC Bob Mottram Bob Mottram
      • Maiyannah Bishop
      @maiyannah *GNU/TLS
      In conversation Monday, 17-Apr-2017 22:42:28 UTC permalink
    • Bob Mottram (bob@social.freedombone.net)'s status on Monday, 17-Apr-2017 22:45:42 UTC Bob Mottram Bob Mottram
      • Christopher Allan Webber
      • Maiyannah Bishop
      @maiyannah @cwebber like you say, this might be just about changing the language from "privacy" to "message scope" or similar. To actually have privacy you need some kind of message or message group security in place.
      In conversation Monday, 17-Apr-2017 22:45:42 UTC permalink
    • Bob Mottram (bob@social.freedombone.net)'s status on Monday, 17-Apr-2017 22:48:50 UTC Bob Mottram Bob Mottram
      • Christopher Allan Webber
      • Maiyannah Bishop
      @cwebber @maiyannah yes that's right. There can be (and have been) bugs, federation issues and so on which have meant that messages ended up in unexpected places. In the Hubzilla case the admin is the captain of the ship and isn't the threat model as such.
      In conversation Monday, 17-Apr-2017 22:48:50 UTC permalink
    • Bob Mottram (bob@social.freedombone.net)'s status on Monday, 17-Apr-2017 22:57:54 UTC Bob Mottram Bob Mottram
      • Christopher Allan Webber
      • Maiyannah Bishop
      @cwebber @maiyannah another way to think about this is suppose that you're sending GPG encrypted mail around and via some MTA snafu a message gets delivered to the wrong inbox. In that case message privacy is still maintained.
      In conversation Monday, 17-Apr-2017 22:57:54 UTC permalink
    • Bob Mottram (bob@social.freedombone.net)'s status on Tuesday, 18-Apr-2017 13:30:49 UTC Bob Mottram Bob Mottram
      • Doc Edward Morbius ⭕
      • Christopher Allan Webber
      • Maiyannah Bishop
      @cwebber @dredmorbius @maiyannah it would make a lot of sense if you think about the ergonomics of using a phone. I've tried using NFC yubikeys with phones before, and the user experience completely sucks.
      In conversation Tuesday, 18-Apr-2017 13:30:49 UTC permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • Privacy
  • Source
  • Version
  • Contact

Bobinas P4G is a social network. It runs on GNU social, version 2.0.1-beta0, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All Bobinas P4G content and data are available under the Creative Commons Attribution 3.0 license.